CVE-2005-4732
UnknownEPSS 1.21%
Last modified
CVE-2005-4732 is a vulnerability of currently unknown severity. Multiple cross-site scripting (XSS) vulnerabilities in index.php in Tux Racer TuxBank 0.7x and 0.8 allow remote attackers to inject arbitrary web script or HTML via the (1) name and (2) description parameters.. EPSS estimates a 1.21% chance of exploitation in the next 30 days.
Description
Multiple cross-site scripting (XSS) vulnerabilities in index.php in Tux Racer TuxBank 0.7x and 0.8 allow remote attackers to inject arbitrary web script or HTML via the (1) name and (2) description parameters.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Tux Racer | Tuxbank | 0.8 |
| Tux Racer | Tuxbank | 0.72 |
| Tux Racer | Tuxbank | 0.73 |
| Tux Racer | Tuxbank | 0.74 |
| Tux Racer | Tuxbank | 0.75 |
| Tux Racer | Tuxbank | 0.76 |
| Tux Racer | Tuxbank | 0.77 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2005-4732?
Multiple cross-site scripting (XSS) vulnerabilities in index.php in Tux Racer TuxBank 0.7x and 0.8 allow remote attackers to inject arbitrary web script or HTML via the (1) name and (2) description parameters.
How severe is CVE-2005-4732?
Severity scoring for CVE-2005-4732 is pending analysis. The EPSS model estimates a 1.21% probability of exploitation in the next 30 days.
How do I fix CVE-2005-4732?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2005
- CVE-2005-4726MUTE 0.4 uses improper flood protection algorithms, which al…
- CVE-2005-4727Cross-site scripting (XSS) vulnerability in gbook.cgi in gBo…
- CVE-2005-4728Untrusted search path vulnerability (RPATH) in amaya 9.2.1 o…
- CVE-2005-4729SQL injection vulnerability in show.php in VBZooM Forum allo…
- CVE-2005-4730Unspecified vulnerability in PEAR Text_Password 1.0 has unkn…
- CVE-2005-4731The Next action in PEAR HTML_QuickForm_Controller 1.0.4 incl…
- CVE-2005-4733NetBSD 2.0 before 20050316 and NetBSD-current before 2005011…
- CVE-2005-4734Stack-based buffer overflow in IISWebAgentIF.dll in RSA Auth…
- CVE-2005-4735IBM DB2 Universal Database (UDB) 810 before 8.1 FP10 allows …
- CVE-2005-4736IBM DB2 Universal Database (UDB) 820 before 8.2 FP10 allows …
- CVE-2005-4737IBM DB2 Universal Database (UDB) 820 before ESE AIX 5765F410…
- CVE-2005-4738IBM DB2 Universal Database (UDB) 810 before ESE AIX 5765F410…
Are you affected by CVE-2005-4732?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
